Lizzie87 | 10.08.2012 12:50 | Teil 2
OTL Code:
OTL logfile created on: 09.08.2012 22:56:50 - Run 1
OTL by OldTimer - Version 3.2.56.0 Folder = C:\Users\Lisa\Desktop
64bit- Home Premium Edition Service Pack 1 (Version = 6.1.7601) - Type = NTWorkstation
Internet Explorer (Version = 9.0.8112.16421)
Locale: 00000407 | Country: Deutschland | Language: DEU | Date Format: dd.MM.yyyy
3,92 Gb Total Physical Memory | 1,64 Gb Available Physical Memory | 41,96% Memory free
7,83 Gb Paging File | 4,55 Gb Available in Paging File | 58,12% Paging File free
Paging file location(s): ?:\pagefile.sys [binary data]
%SystemDrive% = C: | %SystemRoot% = C:\Windows | %ProgramFiles% = C:\Program Files (x86)
Drive C: | 200,00 Gb Total Space | 56,38 Gb Free Space | 28,19% Space Free | Partition Type: NTFS
Drive D: | 246,68 Gb Total Space | 241,62 Gb Free Space | 97,95% Space Free | Partition Type: NTFS
Computer Name: PUPI | User Name: Lisa | Logged in as Administrator.
Boot Mode: Normal | Scan Mode: Current user | Quick Scan | Include 64bit Scans
Company Name Whitelist: On | Skip Microsoft Files: On | No Company Name Whitelist: On | File Age = 30 Days
========== Processes (SafeList) ==========
PRC - [2012.08.07 02:38:02 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Lisa\Desktop\OTL.exe
PRC - [2012.07.16 16:31:32 | 002,673,064 | ---- | M] (TeamViewer GmbH) -- D:\Programme\Teamviewer\TeamViewer_Service.exe
PRC - [2012.01.20 15:23:00 | 000,054,432 | ---- | M] (Sony Corporation) -- C:\Programme\Sony\VAIO Care\VCService.exe
PRC - [2011.11.30 18:49:50 | 000,082,592 | ---- | M] (Sony of America Corporation) -- C:\Programme\Sony\VAIO Care\listener.exe
PRC - [2011.07.12 16:10:34 | 001,001,808 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe
PRC - [2011.07.12 16:10:28 | 000,923,984 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe
PRC - [2011.07.07 15:44:12 | 000,183,432 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Control Center\VESMgrSub.exe
PRC - [2011.07.07 15:44:12 | 000,066,696 | ---- | M] (Sony Corporation) -- C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe
PRC - [2011.06.17 22:02:56 | 002,656,536 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
PRC - [2011.06.17 22:02:41 | 000,326,424 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
PRC - [2011.05.20 10:10:26 | 000,013,592 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe
PRC - [2011.05.20 10:10:12 | 000,284,440 | ---- | M] (Intel Corporation) -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe
PRC - [2011.03.15 14:44:30 | 000,428,384 | ---- | M] (Sony Corporation) -- c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe
PRC - [2011.02.25 10:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE
PRC - [2011.02.23 14:05:04 | 000,105,024 | ---- | M] (ArcSoft, Inc.) -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe
PRC - [2010.09.30 03:06:46 | 000,169,408 | ---- | M] (Adobe Systems Incorporated) -- c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe
========== Modules (No Company Name) ==========
MOD - [2012.08.09 05:57:43 | 000,032,768 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting.resources\2.0.0.0_de_b77a5c561934e089\System.Runtime.Remoting.resources.dll
MOD - [2012.04.24 00:35:09 | 000,630,784 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Drawing\2.0.0.0__b03f5f7f11d50a3a\System.Drawing.dll
MOD - [2012.03.22 00:32:36 | 005,025,792 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Windows.Forms\2.0.0.0__b77a5c561934e089\System.Windows.Forms.dll
MOD - [2012.02.11 01:31:42 | 001,253,376 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\WindowsBase\3.0.0.0__31bf3856ad364e35\WindowsBase.dll
MOD - [2012.01.04 04:51:03 | 003,190,784 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System\2.0.0.0__b77a5c561934e089\System.dll
MOD - [2012.01.04 04:50:59 | 004,550,656 | ---- | M] () -- C:\Windows\assembly\GAC_32\mscorlib\2.0.0.0__b77a5c561934e089\mscorlib.dll
MOD - [2010.11.21 05:24:32 | 000,425,984 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Configuration\2.0.0.0__b03f5f7f11d50a3a\System.Configuration.dll
MOD - [2010.11.21 05:23:48 | 002,048,000 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Xml\2.0.0.0__b77a5c561934e089\System.Xml.dll
MOD - [2010.11.21 05:23:48 | 000,303,104 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\System.Runtime.Remoting\2.0.0.0__b77a5c561934e089\System.Runtime.Remoting.dll
MOD - [2010.11.13 01:26:08 | 000,315,392 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\mscorlib.resources\2.0.0.0_de_b77a5c561934e089\mscorlib.resources.dll
MOD - [2009.06.10 23:22:40 | 000,010,752 | ---- | M] () -- C:\Windows\assembly\GAC_MSIL\Accessibility\2.0.0.0__b03f5f7f11d50a3a\Accessibility.dll
========== Win32 Services (SafeList) ==========
SRV:64bit: - [2011.11.30 18:49:50 | 000,260,768 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files\Sony\VAIO Care\VCPerfService.exe -- (SampleCollector)
SRV:64bit: - [2011.07.20 00:33:46 | 000,204,288 | ---- | M] (AMD) [Auto | Running] -- C:\Windows\SysNative\atiesrxx.exe -- (AMD External Events Utility)
SRV - [2012.07.16 16:31:32 | 002,673,064 | ---- | M] (TeamViewer GmbH) [Auto | Running] -- D:\Programme\Teamviewer\TeamViewer_Service.exe -- (TeamViewer7)
SRV - [2012.07.13 13:28:36 | 000,160,944 | R--- | M] (Skype Technologies) [Auto | Stopped] -- C:\Program Files (x86)\Skype\Updater\Updater.exe -- (SkypeUpdate)
SRV - [2012.06.27 12:29:24 | 002,369,960 | ---- | M] (LogMeIn Inc.) [Auto | Running] -- D:\Programme\Hamachi\hamachi-2.exe -- (Hamachi2Svc)
SRV - [2012.05.10 18:44:34 | 001,259,104 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Programme\Sony\VAIO Update Common\VUAgent.exe -- (VUAgent)
SRV - [2012.01.20 15:23:00 | 000,054,432 | ---- | M] (Sony Corporation) [On_Demand | Running] -- C:\Programme\Sony\VAIO Care\VCService.exe -- (VCService)
SRV - [2011.07.15 16:43:38 | 000,969,352 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Programme\Sony\VAIO Smart Network\VSNService.exe -- (VSNService)
SRV - [2011.07.13 10:14:44 | 000,552,584 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Programme\Sony\VAIO Power Management\SPMService.exe -- (VAIO Power Management)
SRV - [2011.07.12 16:10:34 | 001,001,808 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Bluetooth\obexsrv.exe -- (Bluetooth OBEX Service)
SRV - [2011.07.12 16:10:32 | 001,321,296 | ---- | M] (Intel Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Intel\Bluetooth\mediasrv.exe -- (Bluetooth Media Service)
SRV - [2011.07.12 16:10:28 | 000,923,984 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Bluetooth\devmonsrv.exe -- (Bluetooth Device Monitor)
SRV - [2011.07.07 15:44:12 | 000,066,696 | ---- | M] (Sony Corporation) [Auto | Running] -- C:\Program Files (x86)\Sony\VAIO Control Center\VESMgr.exe -- (VAIO Event Service)
SRV - [2011.07.05 22:27:00 | 000,199,272 | ---- | M] (Realtek Semiconductor) [Auto | Running] -- C:\Programme\Realtek\Audio\HDA\RtkAudioService64.exe -- (RtkAudioService)
SRV - [2011.06.17 22:02:56 | 002,656,536 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe -- (UNS)
SRV - [2011.06.17 22:02:41 | 000,326,424 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe -- (LMS)
SRV - [2011.06.16 22:51:30 | 002,375,168 | ---- | M] (Realsil Microelectronics Inc.) [Auto | Running] -- C:\Program Files (x86)\Realtek\Realtek PCIE Card Reader\RIconMan.exe -- (IconMan_R)
SRV - [2011.05.20 10:10:26 | 000,013,592 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorDataMgrSvc.exe -- (IAStorDataMgrSvc)
SRV - [2011.05.19 19:15:44 | 000,549,616 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Programme\Sony\VCM Intelligent Analyzing Manager\VcmIAlzMgr.exe -- (VcmIAlzMgr)
SRV - [2011.05.02 14:27:50 | 001,517,328 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Programme\Intel\WiFi\bin\EvtEng.exe -- (EvtEng)
SRV - [2011.05.02 14:13:54 | 000,340,240 | ---- | M] () [On_Demand | Stopped] -- C:\Programme\Intel\WiFi\bin\PanDhcpDns.exe -- (MyWiFiDHCPDNS)
SRV - [2011.05.02 14:10:26 | 000,844,560 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Programme\Common Files\Intel\WirelessCommon\RegSrvc.exe -- (RegSrvc)
SRV - [2011.04.21 09:34:16 | 001,136,640 | ---- | M] (Intel Corporation) [Auto | Running] -- C:\Programme\Intel\BluetoothHS\BTHSAmpPalService.exe -- (AMPPALR3)
SRV - [2011.04.21 08:42:50 | 000,134,928 | ---- | M] (Intel(R) Corporation) [Auto | Running] -- C:\Programme\Intel\BluetoothHS\BTHSSecurityMgr.exe -- (BTHSSecurityMgr)
SRV - [2011.03.15 14:44:30 | 000,428,384 | ---- | M] (Sony Corporation) [Auto | Running] -- c:\Program Files (x86)\Sony\PMB\PMBDeviceInfoProvider.exe -- (PMBDeviceInfoProvider)
SRV - [2011.03.01 21:23:36 | 000,183,560 | ---- | M] (Microsoft Corporation.) [On_Demand | Stopped] -- C:\Program Files (x86)\Microsoft\BingBar\BBSvc.EXE -- (BBSvc)
SRV - [2011.02.25 10:46:22 | 000,249,648 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Program Files (x86)\Microsoft\BingBar\SeaPort.EXE -- (SeaPort)
SRV - [2011.02.23 14:05:04 | 000,105,024 | ---- | M] (ArcSoft, Inc.) [Auto | Running] -- C:\Program Files (x86)\ArcSoft\Magic-i Visual Effects 2\uCamMonitor.exe -- (uCamMonitor)
SRV - [2011.02.21 12:55:08 | 000,113,824 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHCImp.exe -- (SOHCImp)
SRV - [2011.02.21 12:55:08 | 000,067,232 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\SOHLib\SOHDs.exe -- (SOHDs)
SRV - [2011.02.18 22:15:06 | 000,099,104 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Programme\Common Files\Sony Shared\VcmXml\VcmXmlIfHelper64.exe -- (VcmXmlIfHelper)
SRV - [2011.02.18 22:02:08 | 000,385,336 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Programme\Sony\VCM Intelligent Network Service Manager\VcmINSMgr.exe -- (VcmINSMgr)
SRV - [2011.01.20 12:27:18 | 000,286,936 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Programme\Common Files\Sony Shared\VAIO Entertainment Platform\SPF\SpfService64.exe -- (SpfService)
SRV - [2011.01.20 12:16:26 | 000,887,000 | ---- | M] (Sony Corporation) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\Sony Shared\VAIO Content Folder Watcher\VCFw.exe -- (VCFw)
SRV - [2010.09.30 03:06:46 | 000,169,408 | ---- | M] (Adobe Systems Incorporated) [Auto | Running] -- c:\Program Files (x86)\Adobe\Elements 9 Organizer\PhotoshopElementsFileAgent.exe -- (AdobeActiveFileMonitor9.0)
SRV - [2010.09.22 18:10:10 | 000,057,184 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Programme\Windows Live\Mesh\wlcrasvc.exe -- (wlcrasvc)
SRV - [2010.09.21 14:49:00 | 002,286,976 | ---- | M] (Microsoft Corp.) [Auto | Running] -- C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE -- (wlidsvc)
SRV - [2010.05.20 15:26:28 | 000,199,536 | ---- | M] (Microsoft Corporation) [Auto | Running] -- C:\Programme\Microsoft LifeCam\MSCamS64.exe -- (MSCamSvc)
SRV - [2010.03.18 23:16:28 | 000,130,384 | ---- | M] (Microsoft Corporation) [Auto | Stopped] -- C:\Windows\Microsoft.NET\Framework\v4.0.30319\mscorsvw.exe -- (clr_optimization_v4.0.30319_32)
SRV - [2010.03.18 11:19:26 | 000,113,152 | ---- | M] (ArcSoft Inc.) [On_Demand | Stopped] -- C:\Program Files (x86)\Common Files\ArcSoft\Connection Service\Bin\ACService.exe -- (ACDaemon)
SRV - [2009.06.10 23:23:09 | 000,066,384 | ---- | M] (Microsoft Corporation) [Disabled | Stopped] -- C:\Windows\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe -- (clr_optimization_v2.0.50727_32)
========== Driver Services (SafeList) ==========
DRV:64bit: - [2012.03.01 08:46:16 | 000,023,408 | ---- | M] (Microsoft Corporation) [Recognizer | Boot | Unknown] -- C:\Windows\SysNative\drivers\fs_rec.sys -- (Fs_Rec)
DRV:64bit: - [2011.12.09 19:45:00 | 000,060,416 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iBtFltCoex.sys -- (iBtFltCoex)
DRV:64bit: - [2011.11.15 01:13:00 | 000,327,168 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btmhsf.sys -- (btmhsf)
DRV:64bit: - [2011.07.20 00:42:15 | 012,230,912 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\igdpmd64.sys -- (intelkmd)
DRV:64bit: - [2011.07.20 00:34:07 | 009,360,896 | ---- | M] (ATI Technologies Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmdag.sys -- (amdkmdag)
DRV:64bit: - [2011.07.20 00:34:07 | 000,309,760 | ---- | M] (Advanced Micro Devices, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\atikmpag.sys -- (amdkmdap)
DRV:64bit: - [2011.07.20 00:30:07 | 000,317,440 | ---- | M] (Intel(R) Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\IntcDAud.sys -- (IntcDAud)
DRV:64bit: - [2011.07.06 16:33:58 | 000,052,736 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\btmaux.sys -- (btmaux)
DRV:64bit: - [2011.06.25 05:13:44 | 000,557,848 | ---- | M] (Intel Corporation) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\iaStor.sys -- (iaStor)
DRV:64bit: - [2011.06.21 15:19:16 | 000,042,392 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\WDKMD.sys -- (wdkmd)
DRV:64bit: - [2011.06.21 15:19:14 | 000,025,496 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\iwdbus.sys -- (iwdbus)
DRV:64bit: - [2011.06.21 15:19:12 | 000,034,200 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\intelaud.sys -- (intaud_WaveExtensible)
DRV:64bit: - [2011.06.17 22:02:39 | 000,056,344 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\HECIx64.sys -- (MEIx64)
DRV:64bit: - [2011.06.16 22:51:52 | 000,337,512 | ---- | M] (Realtek Semiconductor Corp.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\RtsPStor.sys -- (RSPCIESTOR)
DRV:64bit: - [2011.06.15 22:19:55 | 001,439,280 | ---- | M] (Synaptics Incorporated) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SynTP.sys -- (SynTP)
DRV:64bit: - [2011.06.14 06:24:06 | 000,207,872 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3xhc.sys -- (nusb3xhc)
DRV:64bit: - [2011.06.14 06:24:06 | 000,087,552 | ---- | M] (Renesas Electronics Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nusb3hub.sys -- (nusb3hub)
DRV:64bit: - [2011.05.01 14:33:06 | 008,593,920 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\NETwNs64.sys -- (NETwNs64)
DRV:64bit: - [2011.04.21 09:09:26 | 000,294,912 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPALP)
DRV:64bit: - [2011.04.21 09:09:26 | 000,294,912 | ---- | M] (Windows (R) Win 7 DDK provider) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\AmpPal.sys -- (AMPPAL)
DRV:64bit: - [2011.03.11 08:41:12 | 000,107,904 | ---- | M] (Advanced Micro Devices) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsata.sys -- (amdsata)
DRV:64bit: - [2011.03.11 08:41:12 | 000,027,008 | ---- | M] (Advanced Micro Devices) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\amdxata.sys -- (amdxata)
DRV:64bit: - [2011.01.30 03:19:52 | 000,425,064 | ---- | M] (Realtek ) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\Rt64win7.sys -- (RTL8167)
DRV:64bit: - [2010.11.21 05:24:33 | 000,059,392 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbFlt.sys -- (TsUsbFlt)
DRV:64bit: - [2010.11.21 05:23:47 | 000,109,056 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\sdbus.sys -- (sdbus)
DRV:64bit: - [2010.11.21 05:23:47 | 000,078,720 | ---- | M] (Hewlett-Packard Company) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\HpSAMD.sys -- (HpSAMD)
DRV:64bit: - [2010.11.21 05:23:47 | 000,031,232 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\TsUsbGD.sys -- (TsUsbGD)
DRV:64bit: - [2010.05.20 15:26:28 | 000,036,720 | ---- | M] (Microsoft Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\nx6000.sys -- (MSHUSBVideo)
DRV:64bit: - [2010.04.26 22:20:29 | 000,012,032 | ---- | M] (Sony Corporation) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\SFEP.sys -- (SFEP)
DRV:64bit: - [2010.03.19 03:00:00 | 000,055,856 | ---- | M] (Sonic Solutions) [Kernel | Boot | Running] -- C:\Windows\SysNative\drivers\PxHlpa64.sys -- (PxHlpa64)
DRV:64bit: - [2009.07.31 03:40:32 | 000,025,600 | ---- | M] (Creative Technology Ltd.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\XENfiltv.sys -- (XENfiltv)
DRV:64bit: - [2009.07.14 03:52:20 | 000,194,128 | ---- | M] (AMD Technologies Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\amdsbs.sys -- (amdsbs)
DRV:64bit: - [2009.07.14 03:48:04 | 000,065,600 | ---- | M] (LSI Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\lsi_sas2.sys -- (LSI_SAS2)
DRV:64bit: - [2009.07.14 03:45:55 | 000,024,656 | ---- | M] (Promise Technology) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\stexstor.sys -- (stexstor)
DRV:64bit: - [2009.06.20 04:09:57 | 001,394,688 | ---- | M] (Atheros Communications, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\athrx.sys -- (athr)
DRV:64bit: - [2009.06.10 22:35:02 | 000,281,088 | ---- | M] (Intel Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\e1y60x64.sys -- (e1yexpress)
DRV:64bit: - [2009.06.10 22:34:33 | 003,286,016 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\evbda.sys -- (ebdrv)
DRV:64bit: - [2009.06.10 22:34:28 | 000,468,480 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\bxvbda.sys -- (b06bdrv)
DRV:64bit: - [2009.06.10 22:34:23 | 000,270,848 | ---- | M] (Broadcom Corporation) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\b57nd60a.sys -- (b57nd60a)
DRV:64bit: - [2009.06.10 22:31:59 | 000,031,232 | ---- | M] (Hauppauge Computer Works, Inc.) [Kernel | On_Demand | Stopped] -- C:\Windows\SysNative\drivers\hcw85cir.sys -- (hcw85cir)
DRV:64bit: - [2009.05.26 14:32:04 | 000,019,968 | ---- | M] (ArcSoft, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\ArcSoftKsUFilter.sys -- (ArcSoftKsUFilter)
DRV:64bit: - [2009.03.18 16:35:42 | 000,033,856 | -H-- | M] (LogMeIn, Inc.) [Kernel | On_Demand | Running] -- C:\Windows\SysNative\drivers\hamachi.sys -- (hamachi)
DRV - [2009.07.14 03:19:10 | 000,019,008 | ---- | M] (Microsoft Corporation) [File_System | On_Demand | Stopped] -- C:\Windows\SysWOW64\drivers\wimmount.sys -- (WIMMount)
========== Standard Registry (SafeList) ==========
========== Internet Explorer ==========
IE:64bit: - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE:64bit: - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=SNYEDF&pc=MASE&src=IE-SearchBox
IE - HKLM\SOFTWARE\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
IE - HKLM\..\SearchScopes,DefaultScope = {0633EE93-D776-472f-A0FF-E1416B8B2E3A}
IE - HKLM\..\SearchScopes\{0633EE93-D776-472f-A0FF-E1416B8B2E3A}: "URL" = hxxp://www.bing.com/search?q={searchTerms}&form=SNYEDF&pc=MASE&src=IE-SearchBox
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Page_URL = hxxp://vaioportal.sony.eu
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Default_Secondary_Page_URL = hxxp://sony.msn.com [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Secondary Start Pages = hxxp://www.facebook.com/ [binary data]
IE - HKCU\SOFTWARE\Microsoft\Internet Explorer\Main,Start Page = hxxp://www.web.de/
IE - HKCU\..\SearchScopes,DefaultScope = {80ECED3D-1F24-4EB0-AFDF-4FA726353E2A}
IE - HKCU\..\SearchScopes\{80ECED3D-1F24-4EB0-AFDF-4FA726353E2A}: "URL" = hxxp://www.google.com/search?q={searchTerms}&sourceid=ie7&rls=com.microsoft:{language}:{referrer:source}&ie={inputEncoding?}&oe={outputEncoding?}
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyEnable" = 0
IE - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings: "ProxyOverride" = <local>
========== FireFox ==========
FF:64bit: - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@adobe.com/FlashPlayer: C:\Windows\SysWOW64\Macromed\Flash\NPSWF32.dll ()
FF - HKLM\Software\MozillaPlugins\@java.com/JavaPlugin: C:\Program Files (x86)\Java\jre6\bin\new_plugin\npjp2.dll (Sun Microsystems, Inc.)
FF - HKLM\Software\MozillaPlugins\@Microsoft.com/NpCtrl,version=1.0: C:\Program Files (x86)\Microsoft Silverlight\4.0.50401.0\npctrl.dll ( Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3502.0922: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@microsoft.com/WLPG,version=15.4.3508.1109: C:\Program Files (x86)\Windows Live\Photo Gallery\NPWLPG.dll (Microsoft Corporation)
FF - HKLM\Software\MozillaPlugins\@SonyCreativeSoftware.com/Media Go,version=1.0: C:\Program Files (x86)\Sony\Media Go\npmediago.dll (Sony Network Entertainment International LLC)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=3: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKLM\Software\MozillaPlugins\@tools.google.com/Google Update;version=9: C:\Program Files (x86)\Google\Update\1.3.21.115\npGoogleUpdate3.dll (Google Inc.)
FF - HKEY_LOCAL_MACHINE\software\mozilla\Firefox\Extensions\\web2pdfextension@web2pdf.adobedotcom: c:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Browser\WCFirefoxExtn [2012.08.09 05:32:23 | 000,000,000 | ---D | M]
O1 HOSTS File: ([2009.06.10 23:00:26 | 000,000,824 | ---- | M]) - C:\Windows\SysNative\drivers\etc\hosts
O2:64bit: - BHO: (Windows Live ID Sign-in Helper) - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Programme\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll (Microsoft Corp.)
O2 - BHO: (Adobe PDF Conversion Toolbar Helper) - {AE7CD045-E861-484f-8273-0445EE161910} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O2 - BHO: (Bing Bar Helper) - {d2ce3e00-f94a-4740-988e-03dc2f38c34f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O2 - BHO: (SmartSelect Class) - {F4971EE7-DAA0-4053-9964-665D8EE6A077} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O3 - HKLM\..\Toolbar: (Bing Bar) - {8dcb7100-df86-4384-8842-8fa844297b3f} - C:\Program Files (x86)\Microsoft\BingBar\BingExt.dll (Microsoft Corporation.)
O3 - HKCU\..\Toolbar\WebBrowser: (Adobe PDF) - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O4:64bit: - HKLM..\Run: [HotKeysCmds] C:\Windows\SysNative\hkcmd.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IgfxTray] C:\Windows\SysNative\igfxtray.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [IntelPAN] C:\Program Files\Common Files\Intel\WirelessCommon\iFrmewrk.exe (Intel(R) Corporation)
O4:64bit: - HKLM..\Run: [Persistence] C:\Windows\SysNative\igfxpers.exe (Intel Corporation)
O4:64bit: - HKLM..\Run: [RtHDVBg] C:\Program Files\Realtek\Audio\HDA\RAVBg64.exe (Realtek Semiconductor)
O4:64bit: - HKLM..\Run: [RTHDVCPL] C:\Program Files\Realtek\Audio\HDA\RAVCpl64.exe (Realtek Semiconductor)
O4 - HKLM..\Run: [] File not found
O4 - HKLM..\Run: [Adobe Acrobat Speed Launcher] c:\Program Files (x86)\Adobe\Acrobat 10.0\Acrobat\Acrobat_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [Adobe Reader Speed Launcher] C:\Program Files (x86)\Adobe\Reader 10.0\Reader\Reader_sl.exe (Adobe Systems Incorporated)
O4 - HKLM..\Run: [IAStorIcon] C:\Program Files (x86)\Intel\Intel(R) Rapid Storage Technology\IAStorIcon.exe (Intel Corporation)
O4 - HKLM..\Run: [LogMeIn Hamachi Ui] D:\Programme\Hamachi\hamachi-2-ui.exe (LogMeIn Inc.)
O4 - HKLM..\Run: [StartCCC] c:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe (Advanced Micro Devices, Inc.)
O4 - HKLM..\RunOnce: [Malwarebytes Anti-Malware] C:\Program Files (x86)\Malwarebytes' Anti-Malware\mbamgui.exe (Malwarebytes Corporation)
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktop = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoActiveDesktopChanges = 1
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorAdmin = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: ConsentPromptBehaviorUser = 3
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: EnableLUA = 0
O6 - HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System: PromptOnSecureDesktop = 0
O7 - HKCU\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer: NoDriveTypeAutoRun = 145
O8:64bit: - Extra context menu item: Append Link Target to Existing PDF - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Append to Existing PDF - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert Link Target to Adobe PDF - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8:64bit: - Extra context menu item: Convert to Adobe PDF - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append Link Target to Existing PDF - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Append to Existing PDF - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert Link Target to Adobe PDF - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O8 - Extra context menu item: Convert to Adobe PDF - c:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEFavClient.dll (Adobe Systems Incorporated)
O9 - Extra Button: ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Programme\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra 'Tools' menuitem : ICQ7M - {781B39EC-2E18-41FC-9B00-B84E4FFCA85F} - D:\Programme\ICQ7M\ICQ.exe (ICQ, LLC.)
O9 - Extra Button: @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
O9 - Extra 'Tools' menuitem : @C:\Program Files (x86)\Evernote\Evernote\Resource.dll,-101 - {A95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\Program Files (x86)\Evernote\Evernote\EvernoteIE.dll (Evernote Corp., 333 W Evelyn Ave. Mountain View, CA 94041)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000007 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O10:64bit: - NameSpace_Catalog5\Catalog_Entries64\000000000008 [] - C:\Programme\Common Files\Microsoft Shared\Windows Live\WLIDNSP.DLL (Microsoft Corp.)
O1364bit: - gopher Prefix: missing
O13 - gopher Prefix: missing
O16:64bit: - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16:64bit: - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16:64bit: - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O16 - DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab (Java Plug-in 1.6.0_26)
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: DhcpNameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\Parameters\Interfaces\{DDBAE932-BF05-43AE-8FB6-C6173F4FBB87}: DhcpNameServer = 192.168.0.1
O18:64bit: - Protocol\Handler\livecall - No CLSID value found
O18:64bit: - Protocol\Handler\msnim - No CLSID value found
O18:64bit: - Protocol\Handler\skype4com - No CLSID value found
O18:64bit: - Protocol\Handler\wlmailhtml - No CLSID value found
O18:64bit: - Protocol\Handler\wlpg - No CLSID value found
O18 - Protocol\Handler\skype4com {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~2\COMMON~1\Skype\SKYPE4~1.DLL (Skype Technologies)
O20:64bit: - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\explorer.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: UserInit - (C:\Windows\system32\userinit.exe) - C:\Windows\SysNative\userinit.exe (Microsoft Corporation)
O20:64bit: - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20 - HKLM Winlogon: Shell - (explorer.exe) - C:\Windows\SysWow64\explorer.exe (Microsoft Corporation)
O20 - HKLM Winlogon: UserInit - (userinit.exe) - C:\Windows\SysWow64\userinit.exe (Microsoft Corporation)
O20 - HKLM Winlogon: VMApplet - (/pagefile) - File not found
O20:64bit: - Winlogon\Notify\igfxcui: DllName - (igfxdev.dll) - C:\Windows\SysNative\igfxdev.dll (Intel Corporation)
O21:64bit: - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O21 - SSODL: WebCheck - {E6FB5E20-DE35-11CF-9C87-00AA005127ED} - No CLSID value found.
O32 - HKLM CDRom: AutoRun - 1
O33 - MountPoints2\{98796a5e-e1ce-11e1-93d0-806e6f6e6963}\Shell - "" = AutoRun
O33 - MountPoints2\{98796a5e-e1ce-11e1-93d0-806e6f6e6963}\Shell\AutoRun\command - "" = E:\Autorun.exe
O34 - HKLM BootExecute: (autocheck autochk *)
O35:64bit: - HKLM\..comfile [open] -- "%1" %*
O35:64bit: - HKLM\..exefile [open] -- "%1" %*
O35 - HKLM\..comfile [open] -- "%1" %*
O35 - HKLM\..exefile [open] -- "%1" %*
O37:64bit: - HKLM\...com [@ = comfile] -- "%1" %*
O37:64bit: - HKLM\...exe [@ = exefile] -- "%1" %*
O37 - HKLM\...com [@ = comfile] -- "%1" %*
O37 - HKLM\...exe [@ = exefile] -- "%1" %*
O38 - SubSystems\\Windows: (ServerDll=winsrv:UserServerDllInitialization,3)
O38 - SubSystems\\Windows: (ServerDll=winsrv:ConServerDllInitialization,2)
O38 - SubSystems\\Windows: (ServerDll=sxssrv,4)
========== Files/Folders - Created Within 30 Days ==========
[2012.08.09 22:48:50 | 000,596,480 | ---- | C] (OldTimer Tools) -- C:\Users\Lisa\Desktop\OTL.exe
[2012.08.09 19:21:24 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSECache
[2012.08.09 19:16:53 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Google Chrome
[2012.08.09 19:16:38 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\Google
[2012.08.09 19:16:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Google
[2012.08.09 19:15:10 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Malwarebytes
[2012.08.09 19:15:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Malwarebytes' Anti-Malware
[2012.08.09 19:15:00 | 000,000,000 | ---D | C] -- C:\ProgramData\Malwarebytes
[2012.08.09 19:14:59 | 000,024,904 | ---- | C] (Malwarebytes Corporation) -- C:\Windows\SysNative\drivers\mbam.sys
[2012.08.09 19:14:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Malwarebytes' Anti-Malware
[2012.08.09 19:11:44 | 000,033,856 | -H-- | C] (LogMeIn, Inc.) -- C:\Windows\SysNative\hamachi.sys
[2012.08.09 19:11:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\LogMeIn Hamachi
[2012.08.09 19:11:27 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\LogMeIn Hamachi
[2012.08.09 18:51:49 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\iolo
[2012.08.09 18:51:42 | 000,000,000 | RH-D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care
[2012.08.09 18:31:03 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft LifeCam
[2012.08.09 18:30:03 | 000,000,000 | ---D | C] -- C:\Program Files\Microsoft LifeCam
[2012.08.09 18:30:03 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft LifeCam
[2012.08.09 18:27:03 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\Sony
[2012.08.09 18:26:42 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Podcasts
[2012.08.09 18:26:42 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Media Go
[2012.08.09 18:26:06 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Sony
[2012.08.09 17:22:41 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Games
[2012.08.09 12:43:53 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Desktop\Studium
[2012.08.09 12:17:19 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\ArcSoft
[2012.08.09 12:17:15 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\ArcSoft
[2012.08.09 12:16:14 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Skype
[2012.08.09 12:16:10 | 000,000,000 | R--D | C] -- C:\Program Files (x86)\Skype
[2012.08.09 12:16:10 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Skype
[2012.08.09 12:16:10 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Skype
[2012.08.09 11:13:59 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\TS3Client
[2012.08.09 09:20:15 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Sony PMB
[2012.08.09 09:20:14 | 000,000,000 | -H-D | C] -- C:\Users\Lisa\Documents\Operation H
[2012.08.09 09:20:14 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\RCT3
[2012.08.09 09:20:14 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\ICQ
[2012.08.09 09:20:14 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Eigene Scans
[2012.08.09 09:20:14 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\DVDVideoSoft
[2012.08.09 09:20:13 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Command and Conquer Generals Data
[2012.08.09 09:19:45 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Ausland
[2012.08.09 09:19:43 | 000,000,000 | -H-D | C] -- C:\Users\Lisa\Documents\Audio Recorder for Free
[2012.08.09 09:19:43 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Any Video Converter Professional
[2012.08.09 09:19:43 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Adobe
[2012.08.09 09:04:50 | 010,652,120 | ---- | C] (Malwarebytes Corporation ) -- C:\Users\Lisa\mbam-setup-1.62.0.1300.exe
[2012.08.09 09:03:48 | 000,000,000 | ---D | C] -- C:\Users\Lisa\we're alive
[2012.08.09 08:58:38 | 000,000,000 | ---D | C] -- C:\Users\Lisa\USA
[2012.08.09 08:58:37 | 000,000,000 | ---D | C] -- C:\Users\Lisa\people
[2012.08.09 08:57:42 | 000,000,000 | ---D | C] -- C:\Users\Lisa\mama cam
[2012.08.09 08:57:40 | 000,000,000 | ---D | C] -- C:\Users\Lisa\HG world
[2012.08.09 08:57:40 | 000,000,000 | ---D | C] -- C:\Users\Lisa\gorilla
[2012.08.09 08:57:35 | 000,000,000 | ---D | C] -- C:\Users\Lisa\CD
[2012.08.09 08:56:15 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Cam 2Gb all 18.4.12
[2012.08.09 08:56:00 | 000,000,000 | ---D | C] -- C:\Users\Lisa\bilder bearb udo
[2012.08.09 08:55:49 | 000,000,000 | ---D | C] -- C:\Users\Lisa\4.0
[2012.08.09 08:55:49 | 000,000,000 | ---D | C] -- C:\Users\Lisa\25. Bday
[2012.08.09 08:55:49 | 000,000,000 | ---D | C] -- C:\Users\Lisa\.tfo4
[2012.08.09 08:49:00 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Desktop\Rechnungen
[2012.08.09 08:48:30 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Desktop\Bachelorarbeit
[2012.08.09 08:41:36 | 000,000,000 | ---D | C] -- C:\Users\Lisa\temp
[2012.08.09 08:38:09 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ICQ7M
[2012.08.09 08:38:09 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\ICQ Search
[2012.08.09 08:37:54 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\ICQ
[2012.08.09 08:34:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamSpeak 3 Client
[2012.08.09 08:14:48 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Xfire
[2012.08.09 08:14:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Xfire
[2012.08.09 08:14:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Xfire
[2012.08.09 07:54:02 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Meine empfangenen Dateien
[2012.08.09 07:15:06 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Documents\Battlefield 2
[2012.08.09 07:05:44 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\EA GAMES
[2012.08.09 06:58:02 | 000,000,000 | ---D | C] -- C:\Update
[2012.08.09 06:48:31 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\ATI
[2012.08.09 06:48:31 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\ATI
[2012.08.09 06:48:31 | 000,000,000 | ---D | C] -- C:\ProgramData\ATI
[2012.08.09 06:47:38 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Intel Corporation
[2012.08.09 06:47:38 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Adobe
[2012.08.09 06:47:30 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\Adobe
[2012.08.09 06:47:11 | 000,000,000 | R--D | C] -- C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
[2012.08.09 06:47:11 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Searches
[2012.08.09 06:47:11 | 000,000,000 | R--D | C] -- C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Administrative Tools
[2012.08.09 06:47:03 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Identities
[2012.08.09 06:47:00 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Contacts
[2012.08.09 06:46:47 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\VirtualStore
[2012.08.09 06:45:06 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\VAIO Startup Setting Tool
[2012.08.09 06:45:06 | 000,000,000 | ---D | C] -- C:\Windows\pss
[2012.08.09 06:44:55 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Sony Corporation
[2012.08.09 06:44:50 | 000,000,000 | --SD | C] -- C:\Users\Lisa\AppData\Roaming\Microsoft
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Videos
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Saved Games
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Pictures
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Music
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Maintenance
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Links
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Favorites
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Downloads
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Documents
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\Desktop
[2012.08.09 06:44:50 | 000,000,000 | R--D | C] -- C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Accessories
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Vorlagen
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\AppData\Local\Verlauf
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\AppData\Local\Temporary Internet Files
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Startmenü
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\SendTo
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Recent
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Netzwerkumgebung
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Lokale Einstellungen
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Documents\Eigene Videos
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Documents\Eigene Musik
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Eigene Dateien
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Documents\Eigene Bilder
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Druckumgebung
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Cookies
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\AppData\Local\Anwendungsdaten
[2012.08.09 06:44:50 | 000,000,000 | -HSD | C] -- C:\Users\Lisa\Anwendungsdaten
[2012.08.09 06:44:50 | 000,000,000 | -H-D | C] -- C:\Users\Lisa\AppData
[2012.08.09 06:44:50 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\Temp
[2012.08.09 06:44:50 | 000,000,000 | ---D | C] -- C:\Users\Lisa\Roaming
[2012.08.09 06:44:50 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Local\Microsoft
[2012.08.09 06:44:50 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Media Center Programs
[2012.08.09 06:44:50 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Macromedia
[2012.08.09 06:44:50 | 000,000,000 | ---D | C] -- C:\Users\Lisa\AppData\Roaming\Intel
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Vorlagen
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Startmenü
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\Programme
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\Program Files\Gemeinsame Dateien
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Favoriten
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Videos
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Musik
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\Users\Public\Documents\Eigene Bilder
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\Dokumente und Einstellungen
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Dokumente
[2012.08.09 06:44:46 | 000,000,000 | -HSD | C] -- C:\ProgramData\Anwendungsdaten
[2012.08.09 06:30:24 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Evernote for VAIO
[2012.08.09 06:30:23 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Evernote
[2012.08.09 06:30:17 | 000,000,000 | ---D | C] -- C:\ProgramData\Evernote
[2012.08.09 06:29:33 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel Corporation
[2012.08.09 06:29:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel Corporation
[2012.08.09 06:29:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel Corporation
[2012.08.09 06:27:49 | 000,021,176 | ---- | C] (iolo technologies, LLC) -- C:\Windows\SysNative\iolorgdf64.exe
[2012.08.09 06:27:49 | 000,000,000 | ---D | C] -- C:\ProgramData\iolo
[2012.08.09 06:25:39 | 000,000,000 | ---D | C] -- C:\Windows\en
[2012.08.09 06:20:15 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live
[2012.08.09 06:20:08 | 000,000,000 | ---D | C] -- C:\Windows\uk
[2012.08.09 06:19:58 | 000,000,000 | ---D | C] -- C:\Windows\tr
[2012.08.09 06:19:48 | 000,000,000 | ---D | C] -- C:\Windows\sv
[2012.08.09 06:19:43 | 000,000,000 | ---D | C] -- C:\Windows\sk
[2012.08.09 06:19:38 | 000,000,000 | ---D | C] -- C:\Windows\ru
[2012.08.09 06:19:34 | 000,000,000 | ---D | C] -- C:\Windows\ro
[2012.08.09 06:19:30 | 000,000,000 | ---D | C] -- C:\Windows\pt-pt
[2012.08.09 06:19:26 | 000,000,000 | ---D | C] -- C:\Windows\pl
[2012.08.09 06:19:21 | 000,000,000 | ---D | C] -- C:\Windows\no
[2012.08.09 06:19:17 | 000,000,000 | ---D | C] -- C:\Windows\it
[2012.08.09 06:19:13 | 000,000,000 | ---D | C] -- C:\Windows\hu
[2012.08.09 06:19:07 | 000,000,000 | ---D | C] -- C:\Windows\el
[2012.08.09 06:19:02 | 000,000,000 | ---D | C] -- C:\Windows\de
[2012.08.09 06:18:57 | 000,000,000 | ---D | C] -- C:\Windows\fr
[2012.08.09 06:18:51 | 000,000,000 | ---D | C] -- C:\Windows\fi
[2012.08.09 06:18:46 | 000,000,000 | ---D | C] -- C:\Windows\nl
[2012.08.09 06:18:41 | 000,000,000 | ---D | C] -- C:\Windows\da
[2012.08.09 06:18:36 | 000,000,000 | ---D | C] -- C:\Windows\cs
[2012.08.09 06:18:31 | 000,000,000 | ---D | C] -- C:\Windows\bg
[2012.08.09 06:18:13 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft SQL Server Compact Edition
[2012.08.09 06:13:35 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Windows Live
[2012.08.09 06:12:11 | 000,000,000 | ---D | C] -- C:\Windows\PCHEALTH
[2012.08.09 06:12:07 | 000,000,000 | ---D | C] -- C:\Program Files\Windows Live
[2012.08.09 06:11:47 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Silverlight
[2012.08.09 06:11:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Silverlight
[2012.08.09 06:11:20 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Windows Live
[2012.08.09 06:08:58 | 000,000,000 | ---D | C] -- C:\VAIO Sample Contents
[2012.08.09 06:06:15 | 000,000,000 | ---D | C] -- C:\ProgramData\Skype
[2012.08.09 06:05:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony Europe Limited
[2012.08.09 06:05:51 | 088,851,008 | ---- | C] (Axialis Software) -- C:\Windows\SysNative\VAIO Hero Screensaver - Fall 2011 - DE.scr
[2012.08.09 06:03:53 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Main
[2012.08.09 06:03:25 | 000,000,000 | -H-D | C] -- C:\SPLASH.000
[2012.08.09 06:03:01 | 000,000,000 | -H-D | C] -- C:\SPLASH.SYS
[2012.08.09 06:02:42 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Downloaded Installations
[2012.08.09 06:01:42 | 000,000,000 | ---D | C] -- C:\ProgramData\Sony Corporation
[2012.08.09 06:01:40 | 000,000,000 | ---D | C] -- C:\Program Files\Sony
[2012.08.09 05:59:14 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\winrm
[2012.08.09 05:59:14 | 000,000,000 | ---D | C] -- C:\Windows\de-DE
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\XPSViewer
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\WCN
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\UMDF
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sysprep
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\slmgr
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Printing_Admin_Scripts
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\UMDF\de-DE
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\drivers\de-DE
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\de
[2012.08.09 05:59:12 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\0407
[2012.08.09 05:59:11 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\winrm
[2012.08.09 05:59:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\WCN
[2012.08.09 05:59:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\slmgr
[2012.08.09 05:59:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\drivers\de-DE
[2012.08.09 05:59:10 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0407
[2012.08.09 05:59:08 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\Printing_Admin_Scripts
[2012.08.09 05:59:08 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\de
[2012.08.09 05:58:11 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerId.sys.mui
[2012.08.09 05:58:11 | 000,011,776 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerIb.sys.mui
[2012.08.09 05:58:08 | 000,004,096 | ---- | C] (SCM Microsystems, Inc.) -- C:\Windows\SysNative\drivers\de-DE\pscr.sys.mui
[2012.08.09 05:58:08 | 000,002,560 | ---- | C] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrParwdm.sys.mui
[2012.08.09 05:56:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\MSXML 4.0
[2012.08.09 05:56:23 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMB
[2012.08.09 05:54:41 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft Office
[2012.08.09 05:51:14 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony Media Go Install
[2012.08.09 05:48:24 | 000,000,000 | ---D | C] -- C:\ProgramData\ArcSoft
[2012.08.09 05:48:12 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\ArcSoft Webcam Suite
[2012.08.09 05:48:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ArcSoft
[2012.08.09 05:48:09 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ArcSoft
[2012.08.09 05:45:59 | 000,000,000 | ---D | C] -- C:\ProgramData\SmartSound Software Inc
[2012.08.09 05:45:59 | 000,000,000 | ---D | C] -- C:\ProgramData\eSellerate
[2012.08.09 05:45:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\SmartSound Software
[2012.08.09 05:37:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Sonic Shared
[2012.08.09 05:37:06 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\PX Storage Engine
[2012.08.09 05:33:39 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\Macromed
[2012.08.09 05:33:36 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe AIR
[2012.08.09 05:32:02 | 000,000,000 | ---D | C] -- C:\ProgramData\Adobe
[2012.08.09 05:32:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Adobe
[2012.08.09 05:32:02 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Adobe
[2012.08.09 05:30:58 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Microsoft
[2012.08.09 05:28:35 | 000,000,000 | ---D | C] -- C:\_FS_SWRINFO
[2012.08.09 05:28:33 | 000,000,000 | ---D | C] -- C:\Documentation
[2012.08.09 05:27:29 | 000,000,000 | ---D | C] -- C:\Windows\Sonysys
[2012.08.09 05:27:12 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Sony
[2012.08.09 05:27:07 | 000,000,000 | ---D | C] -- C:\Temp
[2012.08.09 05:27:07 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Sony
[2012.08.09 05:25:43 | 000,158,832 | ---- | C] (McAfee, Inc.) -- C:\Windows\SysNative\mfevtps.exe.a002.deleteme
[2012.08.09 05:24:32 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\McAfee
[2012.08.09 05:24:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\McAfee
[2012.08.09 05:24:17 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\DRVSTORE
[2012.08.09 05:24:16 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\McAfee Online Backup
[2012.08.09 05:24:01 | 000,000,000 | ---D | C] -- C:\ProgramData\McAfee
[2012.08.09 05:23:58 | 000,000,000 | ---D | C] -- C:\ProgramData\Sun
[2012.08.09 05:23:57 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Java
[2012.08.09 05:23:53 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Java
[2012.08.09 05:23:42 | 000,000,000 | ---D | C] -- C:\Program Files\Java
[2012.08.09 05:23:27 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Sony Shared
[2012.08.09 05:23:27 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Sony Shared
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\2C0A
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0C0A
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0C04
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0816
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0804
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0424
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\041F
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\041E
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\041D
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\041B
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0419
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0416
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0415
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0414
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0413
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0412
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0411
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0410
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040E
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040D
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040C
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040B
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\040A
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0409
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0408
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0406
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0405
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0404
[2012.08.09 05:21:51 | 000,000,000 | ---D | C] -- C:\Windows\SysNative\0401
[2012.08.09 05:21:50 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Renesas Electronics
[2012.08.09 05:21:38 | 000,000,000 | ---D | C] -- C:\Program Files\Synaptics
[2012.08.09 05:21:19 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\sda
[2012.08.09 05:20:59 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\postureAgent
[2012.08.09 05:20:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\Intel
[2012.08.09 05:20:31 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\AMD APP
[2012.08.09 05:20:30 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\ATI Technologies
[2012.08.09 05:20:30 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\ATI Technologies
[2012.08.09 05:20:27 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Catalyst Control Center
[2012.08.09 05:19:35 | 000,000,000 | ---D | C] -- C:\Program Files\ATI
[2012.08.09 05:19:34 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\ATI Technologies
[2012.08.09 05:18:11 | 000,425,064 | ---- | C] (Realtek ) -- C:\Windows\SysNative\drivers\Rt64win7.sys
[2012.08.09 05:16:41 | 000,000,000 | ---D | C] -- C:\ProgramData\Roaming
[2012.08.09 05:15:46 | 000,000,000 | ---D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel PROSet Wireless
[2012.08.09 05:15:43 | 000,000,000 | ---D | C] -- C:\ProgramData\Intel
[2012.08.09 05:15:43 | 000,000,000 | ---D | C] -- C:\Program Files\Intel
[2012.08.09 05:15:43 | 000,000,000 | ---D | C] -- C:\Program Files\Common Files\Intel
[2012.08.09 05:15:43 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Cisco
[2012.08.09 05:15:08 | 000,000,000 | ---D | C] -- C:\Windows\SysWow64\RTCOM
[2012.08.09 05:15:08 | 000,000,000 | ---D | C] -- C:\Program Files\Realtek
[2012.08.09 05:14:50 | 002,601,816 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\WavesGUILib.dll
[2012.08.09 05:14:50 | 000,518,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSX64.dll
[2012.08.09 05:14:50 | 000,375,128 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEP64A.dll
[2012.08.09 05:14:50 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DHT64.dll
[2012.08.09 05:14:50 | 000,310,104 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RP3DAA64.dll
[2012.08.09 05:14:50 | 000,220,512 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFNHK64.dll
[2012.08.09 05:14:50 | 000,211,184 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSTSH64.dll
[2012.08.09 05:14:50 | 000,204,120 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEED64A.dll
[2012.08.09 05:14:50 | 000,198,896 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSHP64.dll
[2012.08.09 05:14:50 | 000,155,888 | ---- | C] (SRS Labs, Inc.) -- C:\Windows\SysNative\SRSWOW64.dll
[2012.08.09 05:14:50 | 000,101,208 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEL64A.dll
[2012.08.09 05:14:50 | 000,081,248 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFCOM64.dll
[2012.08.09 05:14:50 | 000,078,680 | ---- | C] (Dolby Laboratories, Inc.) -- C:\Windows\SysNative\RTEEG64A.dll
[2012.08.09 05:14:50 | 000,078,176 | ---- | C] (Synopsys, Inc.) -- C:\Windows\SysNative\SFAPO64.dll
[2012.08.09 05:14:50 | 000,074,064 | ---- | C] (Virage Logic Corporation / Sonic Focus) -- C:\Windows\SysWow64\SFCOM.dll
[2012.08.09 05:14:49 | 003,308,376 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEP64A.dll
[2012.08.09 05:14:49 | 002,238,296 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioRealtek.dll
[2012.08.09 05:14:49 | 002,197,264 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioEQ.dll
[2012.08.09 05:14:49 | 002,085,440 | ---- | C] (Fortemedia Corporation) -- C:\Windows\SysNative\FMAPO64.dll
[2012.08.09 05:14:49 | 001,756,264 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2SpeakerDLL64.dll
[2012.08.09 05:14:49 | 001,568,360 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSS2HeadphoneDLL64.dll
[2012.08.09 05:14:49 | 001,486,952 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBoostDLL64.dll
[2012.08.09 05:14:49 | 000,728,680 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSBassEnhancementDLL64.dll
[2012.08.09 05:14:49 | 000,712,296 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSSymmetryDLL64.dll
[2012.08.09 05:14:49 | 000,693,352 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSVoiceClarityDLL64.dll
[2012.08.09 05:14:49 | 000,603,472 | ---- | C] (Knowles Acoustics ) -- C:\Windows\SysNative\KAAPORT64.dll
[2012.08.09 05:14:49 | 000,491,112 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSNeoPCDLL64.dll
[2012.08.09 05:14:49 | 000,432,744 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLimiterDLL64.dll
[2012.08.09 05:14:49 | 000,428,648 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGainCompensatorDLL64.dll
[2012.08.09 05:14:49 | 000,426,328 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EED64A.dll
[2012.08.09 05:14:49 | 000,341,336 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO30.dll
[2012.08.09 05:14:49 | 000,334,680 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxVolumeSDAPO.dll
[2012.08.09 05:14:49 | 000,318,808 | ---- | C] (Waves Audio Ltd.) -- C:\Windows\SysNative\MaxxAudioAPO20.dll
[2012.08.09 05:14:49 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSLFXAPO64.dll
[2012.08.09 05:14:49 | 000,242,792 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPO64.dll
[2012.08.09 05:14:49 | 000,241,768 | ---- | C] (DTS) -- C:\Windows\SysNative\DTSGFXAPONS64.dll
[2012.08.09 05:14:49 | 000,136,024 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEL64A.dll
[2012.08.09 05:14:49 | 000,118,104 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEA64A.dll
[2012.08.09 05:14:49 | 000,074,072 | ---- | C] (Dolby Laboratories) -- C:\Windows\SysNative\R4EEG64A.dll
[2012.08.09 05:14:49 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\Temp
[2012.08.09 05:14:49 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Realtek
[2012.08.09 05:14:47 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Common Files\InstallShield
[2012.08.09 05:13:27 | 000,000,000 | R--D | C] -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel
[2012.08.09 05:13:11 | 000,000,000 | -H-D | C] -- C:\Program Files (x86)\InstallShield Installation Information
[2012.08.09 05:11:40 | 000,053,248 | ---- | C] (Windows XP Bundled build C-Centric Single User) -- C:\Windows\SysWow64\CSVer.dll
[2012.08.09 05:11:40 | 000,000,000 | ---D | C] -- C:\Program Files (x86)\Intel
[2012.08.09 05:11:37 | 000,000,000 | ---D | C] -- C:\Intel
[2012.08.09 05:05:39 | 000,000,000 | ---D | C] -- C:\Windows\SoftwareDistribution
[2012.08.09 05:02:11 | 000,000,000 | -HSD | C] -- C:\System Volume Information
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files - Modified Within 30 Days ==========
[2012.08.09 22:33:00 | 000,001,106 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.08.09 20:34:49 | 000,002,340 | ---- | M] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2012.08.09 19:33:00 | 000,001,102 | ---- | M] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.08.09 19:18:36 | 000,002,019 | ---- | M] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2012.08.09 19:11:43 | 000,000,625 | ---- | M] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2012.08.09 19:08:07 | 000,001,405 | ---- | M] () -- C:\Users\Lisa\Desktop\Internet Explorer (64-bit).lnk
[2012.08.09 19:03:18 | 000,020,992 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-1.C7483456-A289-439d-8115-601632D005A0
[2012.08.09 19:03:18 | 000,020,992 | -H-- | M] () -- C:\Windows\SysNative\7B296FB0-376B-497e-B012-9C450E1B7327-5P-0.C7483456-A289-439d-8115-601632D005A0
[2012.08.09 18:56:30 | 000,298,984 | ---- | M] () -- C:\Windows\SysNative\FNTCACHE.DAT
[2012.08.09 18:55:26 | 000,067,584 | --S- | M] () -- C:\Windows\bootstat.dat
[2012.08.09 18:54:54 | 3155,025,920 | -HS- | M] () -- C:\hiberfil.sys
[2012.08.09 18:51:49 | 000,074,703 | ---- | M] () -- C:\Windows\SysWow64\mfc45.dll
[2012.08.09 18:39:41 | 001,590,446 | ---- | M] () -- C:\Windows\SysWow64\PerfStringBackup.INI
[2012.08.09 18:39:41 | 000,696,888 | ---- | M] () -- C:\Windows\SysNative\perfh007.dat
[2012.08.09 18:39:41 | 000,652,166 | ---- | M] () -- C:\Windows\SysNative\perfh009.dat
[2012.08.09 18:39:41 | 000,148,152 | ---- | M] () -- C:\Windows\SysNative\perfc007.dat
[2012.08.09 18:39:41 | 000,121,098 | ---- | M] () -- C:\Windows\SysNative\perfc009.dat
[2012.08.09 18:39:39 | 001,590,446 | ---- | M] () -- C:\Windows\SysNative\PerfStringBackup.INI
[2012.08.09 18:31:03 | 000,002,041 | ---- | M] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk
[2012.08.09 18:12:26 | 000,001,750 | ---- | M] () -- C:\Users\Public\Desktop\Browserwahl.lnk
[2012.08.09 13:29:11 | 000,000,698 | ---- | M] () -- C:\Users\Lisa\Desktop\C&C Generals.lnk
[2012.08.09 12:16:10 | 000,002,515 | ---- | M] () -- C:\Users\Public\Desktop\Skype.lnk
[2012.08.09 09:08:58 | 000,000,146 | ---- | M] () -- C:\Users\Lisa\Desktop\Verknüpfung.lnk
[2012.08.09 08:41:35 | 000,000,678 | ---- | M] () -- C:\Users\Public\Desktop\TeamViewer 7.lnk
[2012.08.09 08:38:09 | 000,000,676 | ---- | M] () -- C:\Users\Public\Desktop\ICQ7M.lnk
[2012.08.09 08:38:09 | 000,000,159 | ---- | M] () -- C:\Users\Public\Desktop\Suche im Internet.url
[2012.08.09 08:34:42 | 000,000,748 | ---- | M] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2012.08.09 08:14:47 | 000,000,630 | ---- | M] () -- C:\Users\Public\Desktop\Xfire.lnk
[2012.08.09 07:26:54 | 000,000,770 | ---- | M] () -- C:\Users\Public\Desktop\Play BF2 Online Now!.lnk
[2012.08.09 07:26:54 | 000,000,748 | ---- | M] () -- C:\Users\Public\Desktop\Battlefield 2.lnk
[2012.08.09 06:46:56 | 000,000,000 | RH-- | M] () -- C:\Windows\SysWow64\drivers\104D_Sony_VPCSE1E1E.mrk
[2012.08.09 06:46:56 | 000,000,000 | RH-- | M] () -- C:\Windows\SysNative\drivers\104D_Sony_VPCSE1E1E.mrk
[2012.08.09 06:46:55 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_btmaux_01009.Wdf
[2012.08.09 06:46:52 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
[2012.08.09 06:46:22 | 000,000,074 | -H-- | M] () -- C:\splash.idx
[2012.08.09 06:44:39 | 000,159,772 | ---- | M] () -- C:\Windows\SysWow64\license.rtf
[2012.08.09 06:44:39 | 000,159,772 | ---- | M] () -- C:\Windows\SysNative\license.rtf
[2012.08.09 06:30:26 | 000,001,834 | ---- | M] () -- C:\Windows\SysNative\snyinst.oem
[2012.08.09 06:29:45 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iwdbus_01009.Wdf
[2012.08.09 06:29:41 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WDKMD_01009.Wdf
[2012.08.09 06:18:13 | 000,000,020 | ---- | M] () -- C:\Windows\xõÁ
[2012.08.09 06:09:46 | 000,196,608 | ---- | M] () -- C:\Windows\ocsetup_install_OEMHelpCustomization.etl
[2012.08.09 06:05:52 | 088,851,008 | ---- | M] (Axialis Software) -- C:\Windows\SysNative\VAIO Hero Screensaver - Fall 2011 - DE.scr
[2012.08.09 05:58:58 | 000,295,922 | ---- | M] () -- C:\Windows\SysNative\perfi007.dat
[2012.08.09 05:58:58 | 000,038,104 | ---- | M] () -- C:\Windows\SysNative\perfd007.dat
[2012.08.09 05:58:11 | 000,011,776 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerId.sys.mui
[2012.08.09 05:58:11 | 000,011,776 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrSerIb.sys.mui
[2012.08.09 05:58:08 | 000,004,096 | ---- | M] (SCM Microsystems, Inc.) -- C:\Windows\SysNative\drivers\de-DE\pscr.sys.mui
[2012.08.09 05:58:08 | 000,002,560 | ---- | M] (Brother Industries Ltd.) -- C:\Windows\SysNative\drivers\de-DE\BrParwdm.sys.mui
[2012.08.09 05:22:51 | 000,000,000 | ---- | M] () -- C:\Windows\ativpsrm.bin
[2012.08.09 05:21:41 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_SynTP_01009.Wdf
[2012.08.09 05:17:48 | 000,000,000 | -H-- | M] () -- C:\Windows\SysNative\drivers\Msft_Kernel_AMPPAL_01009.Wdf
[2012.08.07 03:20:41 | 000,000,000 | ---- | M] () -- C:\Users\Lisa\defogger_reenable
[2012.08.07 02:38:02 | 000,596,480 | ---- | M] (OldTimer Tools) -- C:\Users\Lisa\Desktop\OTL.exe
[2012.08.07 02:03:29 | 000,000,746 | ---- | M] () -- C:\Users\Lisa\Malwarebytes Anti-Malware.lnk
[2012.08.07 01:54:38 | 010,652,120 | ---- | M] (Malwarebytes Corporation ) -- C:\Users\Lisa\mbam-setup-1.62.0.1300.exe
[2012.08.06 20:39:00 | 280,012,800 | ---- | M] () -- C:\Users\Lisa\kav_rescue_10.iso
[2012.08.06 14:05:00 | 000,111,568 | ---- | M] () -- C:\Users\Lisa\Desktop\Zugang_Zulassung_Master-GH_R_2012.pdf
[2012.08.06 04:08:18 | 000,042,757 | ---- | M] () -- C:\Users\Lisa\Desktop\filme.rtf
[2012.08.04 15:03:22 | 000,033,585 | -H-- | M] () -- C:\Users\Lisa\Documents\iq.rtf
[2012.07.31 00:29:12 | 000,000,425 | ---- | M] () -- C:\Users\Lisa\Desktop\musik.rtf
[2012.07.28 20:07:13 | 000,001,003 | ---- | M] () -- C:\Users\Lisa\trauerbrief.rtf
[2012.07.26 16:48:18 | 001,285,060 | ---- | M] () -- C:\Users\Lisa\Desktop\01 CNC Generals - C_USA04.mp3
[2012.07.26 16:38:10 | 004,744,801 | ---- | M] () -- C:\Users\Lisa\Desktop\01 CNC Generals - USA_01.mp3
[2012.07.24 01:18:26 | 000,001,934 | -H-- | M] () -- C:\Users\Lisa\Documents\how to c&c generals.rtf
[2012.07.23 22:21:28 | 001,646,385 | ---- | M] () -- C:\Users\Lisa\CIMG7985.JPG
[2012.07.23 22:19:16 | 001,713,803 | ---- | M] () -- C:\Users\Lisa\CIMG7984.JPG
[2012.07.21 22:16:12 | 000,000,195 | -H-- | M] () -- C:\Users\Lisa\Documents\nicknames.rtf
[2012.07.16 03:23:54 | 016,099,328 | ---- | M] () -- C:\Users\Lisa\einaudi - divenire.mp3
[1 C:\Windows\*.tmp files -> C:\Windows\*.tmp -> ]
========== Files Created - No Company Name ==========
[2012.08.09 19:21:58 | 000,002,555 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft PowerPoint Viewer .lnk
[2012.08.09 19:18:36 | 000,002,019 | ---- | C] () -- C:\Users\Public\Desktop\Adobe Reader X.lnk
[2012.08.09 19:16:53 | 000,002,340 | ---- | C] () -- C:\Users\Public\Desktop\Google Chrome.lnk
[2012.08.09 19:16:41 | 000,001,106 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineUA.job
[2012.08.09 19:16:39 | 000,001,102 | ---- | C] () -- C:\Windows\tasks\GoogleUpdateTaskMachineCore.job
[2012.08.09 19:11:05 | 000,000,625 | ---- | C] () -- C:\Users\Public\Desktop\LogMeIn Hamachi.lnk
[2012.08.09 19:08:07 | 000,001,405 | ---- | C] () -- C:\Users\Lisa\Desktop\Internet Explorer (64-bit).lnk
[2012.08.09 19:05:34 | 000,001,155 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Update.lnk
[2012.08.09 18:51:49 | 000,074,703 | ---- | C] () -- C:\Windows\SysWow64\mfc45.dll
[2012.08.09 18:51:42 | 000,002,024 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Care.lnk
[2012.08.09 18:31:03 | 000,002,041 | ---- | C] () -- C:\Users\Public\Desktop\Microsoft LifeCam.lnk
[2012.08.09 18:12:26 | 000,001,750 | ---- | C] () -- C:\Users\Public\Desktop\Browserwahl.lnk
[2012.08.09 13:29:11 | 000,000,698 | ---- | C] () -- C:\Users\Lisa\Desktop\C&C Generals.lnk
[2012.08.09 12:16:10 | 000,002,515 | ---- | C] () -- C:\Users\Public\Desktop\Skype.lnk
[2012.08.09 09:19:43 | 000,063,066 | -H-- | C] () -- C:\Users\Lisa\Documents\romantic 14.5.12.rtf
[2012.08.09 09:19:43 | 000,045,659 | -H-- | C] () -- C:\Users\Lisa\Documents\log rich 2.3..rtf
[2012.08.09 09:19:43 | 000,033,585 | -H-- | C] () -- C:\Users\Lisa\Documents\iq.rtf
[2012.08.09 09:19:43 | 000,032,525 | -H-- | C] () -- C:\Users\Lisa\Documents\log rich 3.3..rtf
[2012.08.09 09:19:43 | 000,025,886 | -H-- | C] () -- C:\Users\Lisa\Documents\romantic xfire 29.4.12.rtf
[2012.08.09 09:19:43 | 000,019,927 | -H-- | C] () -- C:\Users\Lisa\Documents\log bensin 20.2.12.rtf
[2012.08.09 09:19:43 | 000,018,192 | -H-- | C] () -- C:\Users\Lisa\Documents\romantic 5.5.12.rtf
[2012.08.09 09:19:43 | 000,016,566 | -H-- | C] () -- C:\Users\Lisa\Documents\romantic 7.5.12.rtf
[2012.08.09 09:19:43 | 000,015,182 | -H-- | C] () -- C:\Users\Lisa\Documents\Introduction.odt
[2012.08.09 09:19:43 | 000,011,724 | -H-- | C] () -- C:\Users\Lisa\Documents\log bensin 26.2.12.rtf
[2012.08.09 09:19:43 | 000,003,114 | -H-- | C] () -- C:\Users\Lisa\Documents\romantic 29.4.12.rtf
[2012.08.09 09:19:43 | 000,001,934 | -H-- | C] () -- C:\Users\Lisa\Documents\how to c&c generals.rtf
[2012.08.09 09:19:43 | 000,001,868 | -H-- | C] () -- C:\Users\Lisa\Documents\message bay.rtf
[2012.08.09 09:19:43 | 000,000,770 | -H-- | C] () -- C:\Users\Lisa\Documents\[kat.ph]pokemon.yellow.gelb.edition.rar.torrent
[2012.08.09 09:19:43 | 000,000,202 | -H-- | C] () -- C:\Users\Lisa\Documents\Zitate.rtf
[2012.08.09 09:19:43 | 000,000,201 | -H-- | C] () -- C:\Users\Lisa\Documents\künster.rtf
[2012.08.09 09:19:43 | 000,000,195 | -H-- | C] () -- C:\Users\Lisa\Documents\nicknames.rtf
[2012.08.09 09:19:42 | 001,977,037 | -H-- | C] () -- C:\Users\Lisa\Documents\Futterautomat_3581.pdf
[2012.08.09 09:19:42 | 001,699,378 | -H-- | C] () -- C:\Users\Lisa\Documents\CIMG7801.JPG
[2012.08.09 09:19:42 | 001,625,098 | -H-- | C] () -- C:\Users\Lisa\Documents\CIMG7800.JPG
[2012.08.09 09:19:42 | 001,621,520 | -H-- | C] () -- C:\Users\Lisa\Documents\CIMG7799.JPG
[2012.08.09 09:19:42 | 000,029,807 | -H-- | C] () -- C:\Users\Lisa\Documents\anleitung blow.rtf
[2012.08.09 09:19:42 | 000,002,181 | -H-- | C] () -- C:\Users\Lisa\Documents\dr. hartel hirtengrund.rtf
[2012.08.09 09:19:42 | 000,000,629 | -H-- | C] () -- C:\Users\Lisa\Documents\bilder links.rtf
[2012.08.09 09:19:42 | 000,000,292 | -H-- | C] () -- C:\Users\Lisa\Documents\adressen elite etc.rtf
[2012.08.09 09:08:58 | 000,000,146 | ---- | C] () -- C:\Users\Lisa\Desktop\Verknüpfung.lnk
[2012.08.09 09:04:50 | 004,760,280 | ---- | C] () -- C:\Users\Lisa\Usher - Scream [128].mp3
[2012.08.09 09:04:50 | 000,720,909 | ---- | C] () -- C:\Users\Lisa\xfire problem 1.jpg
[2012.08.09 09:04:50 | 000,372,102 | ---- | C] () -- C:\Users\Lisa\Studierendenausweis Lisa Graf.jpg
[2012.08.09 09:04:50 | 000,142,411 | ---- | C] () -- C:\Users\Lisa\snowpersons.png
[2012.08.09 09:04:50 | 000,085,953 | ---- | C] () -- C:\Users\Lisa\Picture 526.jpg
[2012.08.09 09:04:50 | 000,073,147 | ---- | C] () -- C:\Users\Lisa\route-map-seattle.gif
[2012.08.09 09:04:50 | 000,056,632 | ---- | C] () -- C:\Users\Lisa\mecca.jpg
[2012.08.09 09:04:50 | 000,051,756 | ---- | C] () -- C:\Users\Lisa\Picture 533.jpg
[2012.08.09 09:04:50 | 000,027,356 | ---- | C] () -- C:\Users\Lisa\uh60 5.6.12.rtf
[2012.08.09 09:04:50 | 000,023,512 | ---- | C] () -- C:\Users\Lisa\sunisastar.jpg
[2012.08.09 09:04:50 | 000,001,003 | ---- | C] () -- C:\Users\Lisa\trauerbrief.rtf
[2012.08.09 09:04:50 | 000,000,266 | ---- | C] () -- C:\Users\Lisa\Pappa.vcf
[2012.08.09 09:04:49 | 003,745,086 | ---- | C] () -- C:\Users\Lisa\matt 1.jpg
[2012.08.09 09:04:49 | 000,000,746 | ---- | C] () -- C:\Users\Lisa\Malwarebytes Anti-Malware.lnk
[2012.08.09 09:04:46 | 117,011,527 | ---- | C] () -- C:\Users\Lisa\LPLTDE.rar
[2012.08.09 09:04:46 | 009,299,642 | ---- | C] () -- C:\Users\Lisa\Linkin Park - Burn It Down (www.SongsLover.com).mp3
[2012.08.09 09:04:46 | 000,040,119 | ---- | C] () -- C:\Users\Lisa\l3.jpg
[2012.08.09 09:04:46 | 000,038,054 | ---- | C] () -- C:\Users\Lisa\l2.jpg
[2012.08.09 09:04:46 | 000,006,730 | ---- | C] () -- C:\Users\Lisa\log xfire.rtf
[2012.08.09 09:04:39 | 280,012,800 | ---- | C] () -- C:\Users\Lisa\kav_rescue_10.iso
[2012.08.09 09:04:39 | 000,039,415 | ---- | C] () -- C:\Users\Lisa\Jesuslol.jpg
[2012.08.09 09:04:38 | 016,099,328 | ---- | C] () -- C:\Users\Lisa\einaudi - divenire.mp3
[2012.08.09 09:04:38 | 009,451,147 | ---- | C] () -- C:\Users\Lisa\Jason Derulo - Breathing (www.SongsLover.com).mp3
[2012.08.09 09:04:38 | 001,713,803 | ---- | C] () -- C:\Users\Lisa\CIMG7984.JPG
[2012.08.09 09:04:38 | 001,674,596 | ---- | C] () -- C:\Users\Lisa\CIMG7917.JPG
[2012.08.09 09:04:38 | 001,661,795 | ---- | C] () -- C:\Users\Lisa\CIMG7916.JPG
[2012.08.09 09:04:38 | 001,652,969 | ---- | C] () -- C:\Users\Lisa\CIMG7914.JPG
[2012.08.09 09:04:38 | 001,649,730 | ---- | C] () -- C:\Users\Lisa\CIMG7977.JPG
[2012.08.09 09:04:38 | 001,646,385 | ---- | C] () -- C:\Users\Lisa\CIMG7985.JPG
[2012.08.09 09:04:38 | 001,638,229 | ---- | C] () -- C:\Users\Lisa\CIMG7915.JPG
[2012.08.09 09:04:38 | 001,610,571 | ---- | C] () -- C:\Users\Lisa\CIMG7879.JPG
[2012.08.09 09:04:38 | 000,961,968 | ---- | C] () -- C:\Users\Lisa\DSC00001.JPG
[2012.08.09 09:04:38 | 000,190,334 | ---- | C] () -- C:\Users\Lisa\deshawn williams.jpg
[2012.08.09 09:04:38 | 000,083,577 | ---- | C] () -- C:\Users\Lisa\daughter.jpg
[2012.08.09 09:04:38 | 000,078,518 | ---- | C] () -- C:\Users\Lisa\DSC_7371.jpg
[2012.08.09 09:04:38 | 000,068,037 | ---- | C] () -- C:\Users\Lisa\DSC_7364.jpg
[2012.08.09 09:04:38 | 000,056,749 | ---- | C] () -- C:\Users\Lisa\DSC_7363.jpg
[2012.08.09 09:04:38 | 000,044,743 | ---- | C] () -- C:\Users\Lisa\DSC_7362.jpg
[2012.08.09 09:04:38 | 000,011,259 | ---- | C] () -- C:\Users\Lisa\gsview64.ini
[2012.08.09 09:04:38 | 000,006,568 | ---- | C] () -- C:\Users\Lisa\images.jpg
[2012.08.09 09:04:38 | 000,000,609 | ---- | C] () -- C:\Users\Lisa\flüge usa.rtf
[2012.08.09 09:04:38 | 000,000,000 | ---- | C] () -- C:\Users\Lisa\defogger_reenable
[2012.08.09 09:04:37 | 001,623,206 | ---- | C] () -- C:\Users\Lisa\CIMG7878.JPG
[2012.08.09 09:04:37 | 001,566,426 | ---- | C] () -- C:\Users\Lisa\CIMG7876.JPG
[2012.08.09 09:04:37 | 000,067,106 | ---- | C] () -- C:\Users\Lisa\7327_310_500_My-Teacher-Believes-In-Evolution.jpg
[2012.08.09 09:04:37 | 000,036,401 | ---- | C] () -- C:\Users\Lisa\car.jpg
[2012.08.09 09:04:37 | 000,005,166 | ---- | C] () -- C:\Users\Lisa\1274633255324s.jpg
[2012.08.09 09:04:37 | 000,000,044 | ---- | C] () -- C:\Users\Lisa\.edu.xtec.properties
[2012.08.09 08:50:33 | 004,744,801 | ---- | C] () -- C:\Users\Lisa\Desktop\01 CNC Generals - USA_01.mp3
[2012.08.09 08:50:33 | 001,285,060 | ---- | C] () -- C:\Users\Lisa\Desktop\01 CNC Generals - C_USA04.mp3
[2012.08.09 08:50:33 | 001,129,406 | ---- | C] () -- C:\Users\Lisa\Desktop\01Bewerbungsbogen300409_090810_end02_bearb_2_neu.pdf
[2012.08.09 08:50:33 | 000,510,888 | ---- | C] () -- C:\Users\Lisa\Desktop\03_Zusatzfragebogen_zum_Bewerbungsbogen_e.pdf
[2012.08.09 08:50:33 | 000,111,568 | ---- | C] () -- C:\Users\Lisa\Desktop\Zugang_Zulassung_Master-GH_R_2012.pdf
[2012.08.09 08:50:33 | 000,097,617 | ---- | C] () -- C:\Users\Lisa\Desktop\02_Erläuterungsblatt_2008jul_090810_end02.pdf
[2012.08.09 08:50:33 | 000,092,501 | ---- | C] () -- C:\Users\Lisa\Desktop\verspätung erstattung 2.pdf
[2012.08.09 08:50:33 | 000,082,075 | ---- | C] () -- C:\Users\Lisa\Desktop\MDB85421-fgr_barrierefrei12.pdf
[2012.08.09 08:50:33 | 000,042,757 | ---- | C] () -- C:\Users\Lisa\Desktop\filme.rtf
[2012.08.09 08:50:33 | 000,000,425 | ---- | C] () -- C:\Users\Lisa\Desktop\musik.rtf
[2012.08.09 08:41:35 | 000,000,678 | ---- | C] () -- C:\Users\Public\Desktop\TeamViewer 7.lnk
[2012.08.09 08:41:35 | 000,000,678 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\TeamViewer 7.lnk
[2012.08.09 08:38:09 | 000,000,676 | ---- | C] () -- C:\Users\Public\Desktop\ICQ7M.lnk
[2012.08.09 08:38:09 | 000,000,159 | ---- | C] () -- C:\Users\Public\Desktop\Suche im Internet.url
[2012.08.09 08:34:42 | 000,000,748 | ---- | C] () -- C:\Users\Public\Desktop\TeamSpeak 3 Client.lnk
[2012.08.09 08:14:47 | 000,000,630 | ---- | C] () -- C:\Users\Public\Desktop\Xfire.lnk
[2012.08.09 07:26:54 | 000,000,770 | ---- | C] () -- C:\Users\Public\Desktop\Play BF2 Online Now!.lnk
[2012.08.09 07:26:54 | 000,000,748 | ---- | C] () -- C:\Users\Public\Desktop\Battlefield 2.lnk
[2012.08.09 06:47:16 | 000,001,405 | ---- | C] () -- C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer (64-bit).lnk
[2012.08.09 06:47:13 | 000,001,439 | ---- | C] () -- C:\Users\Lisa\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Internet Explorer.lnk
[2012.08.09 06:46:56 | 000,000,000 | RH-- | C] () -- C:\Windows\SysWow64\drivers\104D_Sony_VPCSE1E1E.mrk
[2012.08.09 06:46:56 | 000,000,000 | RH-- | C] () -- C:\Windows\SysNative\drivers\104D_Sony_VPCSE1E1E.mrk
[2012.08.09 06:46:55 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_btmaux_01009.Wdf
[2012.08.09 06:46:52 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iBtFltCoex_01009.Wdf
[2012.08.09 06:46:22 | 000,001,955 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Music Unlimited.lnk
[2012.08.09 06:30:26 | 3155,025,920 | -HS- | C] () -- C:\hiberfil.sys
[2012.08.09 06:29:45 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_iwdbus_01009.Wdf
[2012.08.09 06:29:41 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_WDKMD_01009.Wdf
[2012.08.09 06:29:33 | 000,002,052 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Intel(R) WiDi.lnk
[2012.08.09 06:18:26 | 000,001,305 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Movie Maker.lnk
[2012.08.09 06:18:16 | 000,001,374 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Photo Gallery.lnk
[2012.08.09 06:18:13 | 000,000,020 | ---- | C] () -- C:\Windows\xõÁ
[2012.08.09 06:16:39 | 000,001,458 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Mail.lnk
[2012.08.09 06:14:03 | 000,002,486 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows Live Messenger.lnk
[2012.08.09 06:09:30 | 000,196,608 | ---- | C] () -- C:\Windows\ocsetup_install_OEMHelpCustomization.etl
[2012.08.09 06:09:22 | 000,001,275 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Transfer.lnk
[2012.08.09 06:08:29 | 000,002,072 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Gate.lnk
[2012.08.09 06:07:56 | 000,001,852 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Easy Connect.lnk
[2012.08.09 06:07:40 | 000,002,269 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Data Restore Tool.lnk
[2012.08.09 05:59:43 | 000,295,922 | ---- | C] () -- C:\Windows\SysNative\perfi007.dat
[2012.08.09 05:59:42 | 000,696,888 | ---- | C] () -- C:\Windows\SysNative\perfh007.dat
[2012.08.09 05:59:42 | 000,148,152 | ---- | C] () -- C:\Windows\SysNative\perfc007.dat
[2012.08.09 05:59:42 | 000,038,104 | ---- | C] () -- C:\Windows\SysNative\perfd007.dat
[2012.08.09 05:56:23 | 000,001,139 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\PMB.lnk
[2012.08.09 05:54:42 | 000,002,435 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Microsoft Office 2010.lnk
[2012.08.09 05:50:37 | 000,001,303 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Gallery.lnk
[2012.08.09 05:47:29 | 000,002,441 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Reader X.lnk
[2012.08.09 05:44:50 | 000,002,267 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Premiere Elements 9.lnk
[2012.08.09 05:41:10 | 000,001,519 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe ExtendScript Toolkit CS5.lnk
[2012.08.09 05:41:00 | 000,000,997 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Help.lnk
[2012.08.09 05:38:28 | 000,001,892 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Photoshop Elements 9.lnk
[2012.08.09 05:32:43 | 000,002,507 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat X Standard.lnk
[2012.08.09 05:32:43 | 000,002,465 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Adobe Acrobat Distiller X.lnk
[2012.08.09 05:30:15 | 000,002,197 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Smart Network.lnk
[2012.08.09 05:28:36 | 000,001,995 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Manual.lnk
[2012.08.09 05:28:19 | 000,001,531 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\VAIO Control Center.lnk
[2012.08.09 05:22:51 | 000,000,000 | ---- | C] () -- C:\Windows\ativpsrm.bin
[2012.08.09 05:21:41 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_SynTP_01009.Wdf
[2012.08.09 05:21:02 | 000,008,192 | ---- | C] () -- C:\Windows\SysNative\drivers\IntelMEFWVer.dll
[2012.08.09 05:20:13 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblup.dat
[2012.08.09 05:20:13 | 000,003,929 | ---- | C] () -- C:\Windows\SysNative\atipblup.dat
[2012.08.09 05:18:11 | 000,074,272 | ---- | C] () -- C:\Windows\SysNative\RtNicProp64.dll
[2012.08.09 05:17:48 | 000,000,000 | -H-- | C] () -- C:\Windows\SysNative\drivers\Msft_Kernel_AMPPAL_01009.Wdf
[2012.08.09 05:14:51 | 000,003,178 | ---- | C] () -- C:\Windows\SysNative\drivers\RtPCEE4.DAT
[2012.08.09 05:05:29 | 000,001,345 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Media Center.lnk
[2012.08.09 05:05:25 | 000,001,326 | ---- | C] () -- C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Windows DVD Maker.lnk
[2012.05.03 04:55:52 | 000,042,392 | ---- | C] () -- C:\Windows\SysWow64\xfcodec.dll
[2011.07.20 02:29:42 | 000,003,929 | ---- | C] () -- C:\Windows\SysWow64\atipblag.dat
[2011.07.20 02:29:36 | 000,963,116 | ---- | C] () -- C:\Windows\SysWow64\igkrng600.bin
[2011.07.20 02:29:35 | 000,218,304 | ---- | C] () -- C:\Windows\SysWow64\igfcg600m.bin
[2011.07.20 02:29:35 | 000,145,804 | ---- | C] () -- C:\Windows\SysWow64\igcompkrng600.bin
[2011.07.20 02:29:35 | 000,056,832 | ---- | C] () -- C:\Windows\SysWow64\igdde32.dll
[2011.07.20 02:29:34 | 013,906,944 | ---- | C] () -- C:\Windows\SysWow64\ig4icd32.dll
[2011.07.01 23:08:22 | 000,059,904 | ---- | C] () -- C:\Windows\SysWow64\OVDecode.dll
[2011.06.21 10:08:55 | 000,066,856 | ---- | C] () -- C:\Windows\SysWow64\SynTPEnhPS.dll
[2011.03.31 08:59:24 | 000,002,169 | ---- | C] () -- C:\Windows\XENcfg.ini
[2011.02.11 01:03:27 | 001,590,446 | ---- | C] () -- C:\Windows\SysWow64\PerfStringBackup.INI
========== LOP Check ==========
[2012.08.09 17:19:03 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\ICQ
[2012.08.09 08:38:09 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\ICQ Search
[2012.08.09 18:51:49 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\iolo
[2012.08.09 18:26:06 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\Sony
[2012.08.09 12:23:22 | 000,000,000 | ---D | M] -- C:\Users\Lisa\AppData\Roaming\TS3Client
[2009.07.14 07:08:49 | 000,006,166 | ---- | M] () -- C:\Windows\Tasks\SCHEDLGU.TXT
========== Purity Check ==========
< End of report > |